2 * Copyright (c) 2016 Antonin Décimo, Jean-Raphaël Gaglione
4 * Redistribution and use in source and binary forms, with or without
5 * modification, are permitted provided that the following conditions
7 * 1. Redistributions of source code must retain the above copyright
8 * notice, this list of conditions and the following disclaimer.
9 * 2. Redistributions in binary form must reproduce the above copyright
10 * notice, this list of conditions and the following disclaimer in the
11 * documentation and/or other materials provided with the distribution.
12 * 3. Neither the name of the project nor the names of its contributors
13 * may be used to endorse or promote products derived from this software
14 * without specific prior written permission.
16 * THIS SOFTWARE IS PROVIDED BY THE PROJECT AND CONTRIBUTORS ``AS IS'' AND
17 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
18 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
19 * ARE DISCLAIMED. IN NO EVENT SHALL THE PROJECT OR CONTRIBUTORS BE LIABLE
20 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
21 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
22 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
23 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
24 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
25 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
29 /* \summary: Home Networking Control Protocol (HNCP) printer */
35 #include <netdissect-stdinc.h>
40 #include "netdissect.h"
41 #include "addrtoname.h"
45 hncp_print_rec(netdissect_options
*ndo
,
46 const u_char
*cp
, u_int length
, int indent
);
49 hncp_print(netdissect_options
*ndo
,
50 const u_char
*cp
, u_int length
)
52 ND_PRINT((ndo
, "hncp (%d)", length
));
53 hncp_print_rec(ndo
, cp
, length
, 1);
57 #define DNCP_REQUEST_NETWORK_STATE 1
58 #define DNCP_REQUEST_NODE_STATE 2
59 #define DNCP_NODE_ENDPOINT 3
60 #define DNCP_NETWORK_STATE 4
61 #define DNCP_NODE_STATE 5
63 #define DNCP_KEEP_ALIVE_INTERVAL 9
64 #define DNCP_TRUST_VERDICT 10
67 #define HNCP_HNCP_VERSION 32
68 #define HNCP_EXTERNAL_CONNECTION 33
69 #define HNCP_DELEGATED_PREFIX 34
70 #define HNCP_PREFIX_POLICY 43
71 #define HNCP_DHCPV4_DATA 37
72 #define HNCP_DHCPV6_DATA 38
73 #define HNCP_ASSIGNED_PREFIX 35
74 #define HNCP_NODE_ADDRESS 36
75 #define HNCP_DNS_DELEGATED_ZONE 39
76 #define HNCP_DOMAIN_NAME 40
77 #define HNCP_NODE_NAME 41
78 #define HNCP_MANAGED_PSK 42
80 /* See type_mask in hncp_print_rec below */
81 #define RANGE_DNCP_RESERVED 0x10000
82 #define RANGE_HNCP_UNASSIGNED 0x10001
83 #define RANGE_DNCP_PRIVATE_USE 0x10002
84 #define RANGE_DNCP_FUTURE_USE 0x10003
86 static const struct tok type_values
[] = {
87 { DNCP_REQUEST_NETWORK_STATE
, "Request network state" },
88 { DNCP_REQUEST_NODE_STATE
, "Request node state" },
89 { DNCP_NODE_ENDPOINT
, "Node endpoint" },
90 { DNCP_NETWORK_STATE
, "Network state" },
91 { DNCP_NODE_STATE
, "Node state" },
92 { DNCP_PEER
, "Peer" },
93 { DNCP_KEEP_ALIVE_INTERVAL
, "Keep-alive interval" },
94 { DNCP_TRUST_VERDICT
, "Trust-Verdict" },
96 { HNCP_HNCP_VERSION
, "HNCP-Version" },
97 { HNCP_EXTERNAL_CONNECTION
, "External-Connection" },
98 { HNCP_DELEGATED_PREFIX
, "Delegated-Prefix" },
99 { HNCP_PREFIX_POLICY
, "Prefix-Policy" },
100 { HNCP_DHCPV4_DATA
, "DHCPv4-Data" },
101 { HNCP_DHCPV6_DATA
, "DHCPv6-Data" },
102 { HNCP_ASSIGNED_PREFIX
, "Assigned-Prefix" },
103 { HNCP_NODE_ADDRESS
, "Node-Address" },
104 { HNCP_DNS_DELEGATED_ZONE
, "DNS-Delegated-Zone" },
105 { HNCP_DOMAIN_NAME
, "Domain-Name" },
106 { HNCP_NODE_NAME
, "Node-Name" },
107 { HNCP_MANAGED_PSK
, "Managed-PSK" },
109 { RANGE_DNCP_RESERVED
, "Reserved" },
110 { RANGE_HNCP_UNASSIGNED
, "Unassigned" },
111 { RANGE_DNCP_PRIVATE_USE
, "Private use" },
112 { RANGE_DNCP_FUTURE_USE
, "Future use" },
117 #define DH4OPT_DNS_SERVERS 6 /* RFC2132 */
118 #define DH4OPT_NTP_SERVERS 42 /* RFC2132 */
119 #define DH4OPT_DOMAIN_SEARCH 119 /* RFC3397 */
121 static const struct tok dh4opt_str
[] = {
122 { DH4OPT_DNS_SERVERS
, "DNS-server" },
123 { DH4OPT_NTP_SERVERS
, "NTP-server"},
124 { DH4OPT_DOMAIN_SEARCH
, "DNS-search" },
128 #define DH6OPT_DNS_SERVERS 23 /* RFC3646 */
129 #define DH6OPT_DOMAIN_LIST 24 /* RFC3646 */
130 #define DH6OPT_SNTP_SERVERS 31 /* RFC4075 */
132 static const struct tok dh6opt_str
[] = {
133 { DH6OPT_DNS_SERVERS
, "DNS-server" },
134 { DH6OPT_DOMAIN_LIST
, "DNS-search-list" },
135 { DH6OPT_SNTP_SERVERS
, "SNTP-servers" },
140 format_nid(const u_char
*data
)
142 static char buf
[4][11+5];
145 snprintf(buf
[i
], 16, "%02x:%02x:%02x:%02x",
146 data
[0], data
[1], data
[2], data
[3]);
151 format_256(const u_char
*data
)
153 static char buf
[4][64+5];
156 snprintf(buf
[i
], 28, "%016" PRIx64
"%016" PRIx64
"%016" PRIx64
"%016" PRIx64
,
157 EXTRACT_64BITS(data
),
158 EXTRACT_64BITS(data
+ 8),
159 EXTRACT_64BITS(data
+ 16),
160 EXTRACT_64BITS(data
+ 24)
166 format_interval(const uint16_t n
)
168 static char buf
[4][sizeof("000.00s")];
172 return "0.0s (bogus)";
173 snprintf(buf
[i
], sizeof(buf
[i
]), "%u.%02us", n
/ 100, n
% 100);
178 format_ip6addr(netdissect_options
*ndo
, const u_char
*cp
)
180 if (EXTRACT_64BITS(cp
) == 0x0 && EXTRACT_32BITS(cp
+8) == 0xffff)
181 return ipaddr_string(ndo
, cp
+ 12);
183 return ip6addr_string(ndo
, cp
);
187 print_prefix(netdissect_options
*ndo
, const u_char
*prefix
, u_int max_length
)
190 static char buf
[sizeof("xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx::/128")];
191 static u_char prefix_v4
[5];
192 if (prefix
[0] >= 96 && max_length
>= 13 && EXTRACT_64BITS(prefix
+1) == 0x0 && EXTRACT_32BITS(prefix
+9) == 0xffff) {
193 prefix_v4
[0] = prefix
[0]-96;
194 prefix_v4
[1] = prefix
[13];
195 prefix_v4
[2] = prefix
[14];
196 prefix_v4
[3] = prefix
[15];
197 prefix_v4
[4] = prefix
[16];
198 plenbytes
= 12 + decode_prefix4(ndo
, (const u_char
*)prefix_v4
, max_length
-12, buf
, 45);
200 plenbytes
= decode_prefix6(ndo
, prefix
, max_length
, buf
, 45);
203 safeputs(ndo
, (const u_char
*)buf
, 45);
208 print_dns_label(netdissect_options
*ndo
,
209 const u_char
*cp
, u_int max_length
, int print
)
212 while (length
< max_length
) {
213 u_int lab_length
= cp
[length
++];
216 if (length
> 1 && print
)
217 safeputchar(ndo
, '.');
218 if (length
+lab_length
> max_length
) {
220 safeputs(ndo
, cp
+length
, max_length
-length
);
224 safeputs(ndo
, cp
+length
, lab_length
);
225 length
+= lab_length
;
228 ND_PRINT((ndo
, "[|DNS]"));
233 dhcpv4_print(netdissect_options
*ndo
,
234 const u_char
*cp
, u_int length
, int indent
)
237 const u_char
*tlv
, *value
;
238 uint8_t type
, optlen
;
243 type
= (uint8_t)tlv
[0];
244 optlen
= (uint8_t)tlv
[1];
247 ND_PRINT((ndo
, "\n"));
248 for (t
= indent
; t
> 0; t
--)
249 ND_PRINT((ndo
, "\t"));
251 ND_PRINT((ndo
, "%s", tok2str(dh4opt_str
, "Unknown", type
)));
252 ND_PRINT((ndo
," (%u)", optlen
+ 2 ));
255 case DH4OPT_DNS_SERVERS
:
256 case DH4OPT_NTP_SERVERS
: {
257 if (optlen
< 4 || optlen
% 4 != 0) {
260 for (t
= 0; t
< optlen
; t
+= 4)
261 ND_PRINT((ndo
, " %s", ipaddr_string(ndo
, value
+ t
)));
264 case DH4OPT_DOMAIN_SEARCH
: {
265 const u_char
*tp
= value
;
266 while (tp
< value
+ optlen
) {
267 ND_PRINT((ndo
, " "));
268 if ((tp
= ns_nprint(ndo
, tp
, value
+ optlen
)) == NULL
)
281 dhcpv6_print(netdissect_options
*ndo
,
282 const u_char
*cp
, u_int length
, int indent
)
285 const u_char
*tlv
, *value
;
286 uint16_t type
, optlen
;
291 type
= EXTRACT_16BITS(tlv
);
292 optlen
= EXTRACT_16BITS(tlv
+ 2);
295 ND_PRINT((ndo
, "\n"));
296 for (t
= indent
; t
> 0; t
--)
297 ND_PRINT((ndo
, "\t"));
299 ND_PRINT((ndo
, "%s", tok2str(dh6opt_str
, "Unknown", type
)));
300 ND_PRINT((ndo
," (%u)", optlen
+ 4 ));
303 case DH6OPT_DNS_SERVERS
:
304 case DH6OPT_SNTP_SERVERS
: {
305 if (optlen
% 16 != 0) {
306 ND_PRINT((ndo
, " %s", istr
));
309 for (t
= 0; t
< optlen
; t
+= 16)
310 ND_PRINT((ndo
, " %s", ip6addr_string(ndo
, value
+ t
)));
313 case DH6OPT_DOMAIN_LIST
: {
314 const u_char
*tp
= value
;
315 while (tp
< value
+ optlen
) {
316 ND_PRINT((ndo
, " "));
317 if ((tp
= ns_nprint(ndo
, tp
, value
+ optlen
)) == NULL
)
329 /* Determine in-line mode */
331 is_in_line(netdissect_options
*ndo
, int indent
)
333 return indent
- 1 >= ndo
->ndo_vflag
&& ndo
->ndo_vflag
< 3;
337 print_type_in_line(netdissect_options
*ndo
,
338 uint32_t type
, int count
, int indent
, int *first_one
)
345 ND_PRINT((ndo
, "\n"));
346 for (t
= indent
; t
> 0; t
--)
347 ND_PRINT((ndo
, "\t"));
349 ND_PRINT((ndo
, " "));
352 ND_PRINT((ndo
, ", "));
354 ND_PRINT((ndo
, "%s", tok2str(type_values
, "Easter Egg", type
)));
356 ND_PRINT((ndo
, " (x%d)", count
));
361 hncp_print_rec(netdissect_options
*ndo
,
362 const u_char
*cp
, u_int length
, int indent
)
364 const int in_line
= is_in_line(ndo
, indent
);
369 uint32_t last_type_mask
= 0xffffffffU
;
370 int last_type_count
= -1;
372 const u_char
*tlv
, *value
;
373 uint16_t type
, bodylen
;
381 ND_PRINT((ndo
, "\n"));
382 for (t
= indent
; t
> 0; t
--)
383 ND_PRINT((ndo
, "\t"));
390 type
= EXTRACT_16BITS(tlv
);
391 bodylen
= EXTRACT_16BITS(tlv
+ 2);
393 ND_TCHECK2(*value
, bodylen
);
394 if (i
+ bodylen
+ 4 > length
)
398 (type
== 0) ? RANGE_DNCP_RESERVED
:
399 (44 <= type
&& type
<= 511) ? RANGE_HNCP_UNASSIGNED
:
400 (768 <= type
&& type
<= 1023) ? RANGE_DNCP_PRIVATE_USE
:
401 RANGE_DNCP_FUTURE_USE
;
402 if (type
== 6 || type
== 7)
403 type_mask
= RANGE_DNCP_FUTURE_USE
;
409 u_int key
= type_values
[t
++].v
;
420 if (last_type_mask
== type_mask
) {
423 print_type_in_line(ndo
, last_type_mask
, last_type_count
, indent
, &first_one
);
424 last_type_mask
= type_mask
;
431 ND_PRINT((ndo
,"%s", tok2str(type_values
, "Easter Egg (42)", type_mask
) ));
432 if (type_mask
> 0xffff)
433 ND_PRINT((ndo
,": type=%u", type
));
434 ND_PRINT((ndo
," (%u)", bodylen
+ 4 ));
438 case DNCP_REQUEST_NETWORK_STATE
: {
440 ND_PRINT((ndo
, " %s", istr
));
444 case DNCP_REQUEST_NODE_STATE
: {
445 const char *node_identifier
;
448 node_identifier
= format_nid(value
);
449 ND_PRINT((ndo
, " NID: %s", node_identifier
));
453 case DNCP_NODE_ENDPOINT
: {
454 const char *node_identifier
;
455 uint32_t endpoint_identifier
;
458 node_identifier
= format_nid(value
);
459 endpoint_identifier
= EXTRACT_32BITS(value
+ 4);
460 ND_PRINT((ndo
, " NID: %s EPID: %08x",
467 case DNCP_NETWORK_STATE
: {
471 hash
= EXTRACT_64BITS(value
);
472 ND_PRINT((ndo
, " hash: %016" PRIx64
, hash
));
476 case DNCP_NODE_STATE
: {
477 const char *node_identifier
, *interval
;
478 uint32_t sequence_number
;
482 node_identifier
= format_nid(value
);
483 sequence_number
= EXTRACT_32BITS(value
+ 4);
484 interval
= format_interval(EXTRACT_32BITS(value
+ 8));
485 hash
= EXTRACT_64BITS(value
+ 12);
486 ND_PRINT((ndo
, " NID: %s seqno: %u %s hash: %016" PRIx64
,
492 hncp_print_rec(ndo
, value
+20, bodylen
-20, indent
+1);
497 const char *peer_node_identifier
;
498 uint32_t peer_endpoint_identifier
, endpoint_identifier
;
501 peer_node_identifier
= format_nid(value
);
502 peer_endpoint_identifier
= EXTRACT_32BITS(value
+ 4);
503 endpoint_identifier
= EXTRACT_32BITS(value
+ 8);
504 ND_PRINT((ndo
, " Peer-NID: %s Peer-EPID: %08x Local-EPID: %08x",
505 peer_node_identifier
,
506 peer_endpoint_identifier
,
512 case DNCP_KEEP_ALIVE_INTERVAL
: {
513 uint32_t endpoint_identifier
;
514 const char *interval
;
517 endpoint_identifier
= EXTRACT_32BITS(value
);
518 interval
= format_interval(EXTRACT_32BITS(value
+ 4));
519 ND_PRINT((ndo
, " EPID: %08x Interval: %s",
526 case DNCP_TRUST_VERDICT
: {
529 ND_PRINT((ndo
, " Verdict: %u Fingerprint: %s Common Name: ",
531 format_256(value
+ 4)));
532 safeputs(ndo
, value
+ 36, bodylen
- 36);
536 case HNCP_HNCP_VERSION
: {
537 uint16_t capabilities
;
541 capabilities
= EXTRACT_16BITS(value
+ 2);
542 M
= (uint8_t)((capabilities
>> 12) & 0xf);
543 P
= (uint8_t)((capabilities
>> 8) & 0xf);
544 H
= (uint8_t)((capabilities
>> 4) & 0xf);
545 L
= (uint8_t)(capabilities
& 0xf);
546 ND_PRINT((ndo
, " M: %u P: %u H: %u L: %u User-agent: ",
549 safeputs(ndo
, value
+ 4, bodylen
- 4);
553 case HNCP_EXTERNAL_CONNECTION
: {
555 hncp_print_rec(ndo
, value
, bodylen
, indent
+1);
559 case HNCP_DELEGATED_PREFIX
: {
561 if (bodylen
< 9 || bodylen
< 9 + (value
[8] + 7) / 8)
563 ND_PRINT((ndo
, " VLSO: %s PLSO: %s Prefix: ",
564 format_interval(EXTRACT_32BITS(value
)),
565 format_interval(EXTRACT_32BITS(value
+ 4))
567 if ((l
= print_prefix(ndo
, value
+ 8, bodylen
- 8)) < 0)
572 hncp_print_rec(ndo
, value
+ l
, bodylen
- l
, indent
+1);
576 case HNCP_PREFIX_POLICY
: {
581 ND_PRINT((ndo
, " type: "));
585 ND_PRINT((ndo
, "Internet connectivity"));
586 } else if (policy
>= 1 && policy
<= 128) {
587 ND_PRINT((ndo
, "Dest-Prefix: "));
588 print_prefix(ndo
, value
, bodylen
);
589 } else if (policy
== 129) {
590 ND_PRINT((ndo
, "DNS domain: "));
591 print_dns_label(ndo
, value
+1, bodylen
-1, 1);
592 } else if (policy
== 130) {
593 ND_PRINT((ndo
, "Opaque UTF-8: "));
594 safeputs(ndo
, value
+ 1, bodylen
- 1);
595 } else if (policy
== 131) {
598 ND_PRINT((ndo
, "Restrictive assignment"));
599 } else if (policy
>= 132) {
600 ND_PRINT((ndo
, "Unknown (%u)", policy
)); /* Reserved for future additions */
605 case HNCP_DHCPV4_DATA
: {
608 if (dhcpv4_print(ndo
, value
, bodylen
, indent
+1) != 0)
613 case HNCP_DHCPV6_DATA
: {
616 if (dhcpv6_print(ndo
, value
, bodylen
, indent
+1) != 0)
621 case HNCP_ASSIGNED_PREFIX
: {
624 if (bodylen
< 6 || bodylen
< 6 + (value
[5] + 7) / 8)
626 prty
= (uint8_t)(value
[4] & 0xf);
627 ND_PRINT((ndo
, " EPID: %08x Prty: %u",
628 EXTRACT_32BITS(value
),
631 ND_PRINT((ndo
, " Prefix: "));
632 if ((l
= print_prefix(ndo
, value
+ 5, bodylen
- 5)) < 0)
638 hncp_print_rec(ndo
, value
+ l
, bodylen
- l
, indent
+1);
642 case HNCP_NODE_ADDRESS
: {
643 uint32_t endpoint_identifier
;
644 const char *ip_address
;
647 endpoint_identifier
= EXTRACT_32BITS(value
);
648 ip_address
= format_ip6addr(ndo
, value
+ 4);
649 ND_PRINT((ndo
, " EPID: %08x IP Address: %s",
654 hncp_print_rec(ndo
, value
+ 20, bodylen
- 20, indent
+1);
658 case HNCP_DNS_DELEGATED_ZONE
: {
659 const char *ip_address
;
663 ip_address
= format_ip6addr(ndo
, value
);
664 ND_PRINT((ndo
, " IP-Address: %s %c%c%c ",
666 (value
[16] & 4) ? 'l' : '-',
667 (value
[16] & 2) ? 'b' : '-',
668 (value
[16] & 1) ? 's' : '-'
670 len
= print_dns_label(ndo
, value
+17, bodylen
-17, 1);
676 hncp_print_rec(ndo
, value
+len
, bodylen
-len
, indent
+1);
680 case HNCP_DOMAIN_NAME
: {
683 ND_PRINT((ndo
, " Domain: "));
684 print_dns_label(ndo
, value
, bodylen
, 1);
688 case HNCP_NODE_NAME
: {
693 if (bodylen
< 17 + l
)
695 ND_PRINT((ndo
, " IP-Address: %s Name: ",
696 format_ip6addr(ndo
, value
)
699 safeputchar(ndo
, '"');
700 safeputs(ndo
, value
+ 17, l
);
701 safeputchar(ndo
, '"');
703 ND_PRINT((ndo
, "%s", istr
));
708 hncp_print_rec(ndo
, value
+ l
, bodylen
- l
, indent
+1);
712 case HNCP_MANAGED_PSK
: {
715 ND_PRINT((ndo
, " PSK: %s", format_256(value
)));
716 hncp_print_rec(ndo
, value
+ 32, bodylen
- 32, indent
+1);
720 case RANGE_DNCP_RESERVED
:
721 case RANGE_HNCP_UNASSIGNED
:
722 case RANGE_DNCP_PRIVATE_USE
:
723 case RANGE_DNCP_FUTURE_USE
:
729 i
+= 4 + bodylen
+ (-bodylen
& 3);
731 print_type_in_line(ndo
, last_type_mask
, last_type_count
, indent
, &first_one
);
736 ND_PRINT((ndo
, "%s", "[|hncp]"));
740 ND_PRINT((ndo
, "%s", istr
));